> -----Original Message-----
> From: Rickard Öberg [mailto:[EMAIL PROTECTED]] 
> 
> But the security problem is not with pages really, but with 
> actions. If 
> the request is stopped at the View stage it's already too 
> late: you may 
> have executed code that the user was not allowed to execute.
> 
> /Rickard
> 

I'm thinking we could use your idea of packages, and map packages to certain paths, 
then you could easily secure by package.

Jason


-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Opensymphony-webwork mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/opensymphony-webwork

Reply via email to